Executive brief
1millionbot's AI Chat Platform is a SaaS solution that enables businesses and public administrations to deploy conversational virtual assistants. An inadequately sanitized input in the client-side rendering engine allows unauthenticated users to inject malicious hyperlinks via Markdown syntax, affecting only the attacker's own session with no risk to internal infrastructure or administrative functions.
Technical details
CWE-79 cross-site scripting vulnerability in the client-side rendering engine due to inadequate input sanitization of Markdown syntax and content blocks. An unauthenticated remote attacker can inject malicious hyperlinks via network messages; user interaction (opening a message) is required. The impact is self-limited to the attacker's own session with no ability to compromise backend systems, access third-party data, or affect administrators.
Affected products
- 1millionbot AI Chat Platform
Timeline
- 2026-09-21: disclosed